SSL Certificates

The following table shows further information as well as a list of malware samples including the corresponding botnet C&C associated with the SSL certificate fingerprint 8beb5351ce626331b6c3001d0c304461daf23164.

Database Entry


SHA1 Fingerprint:8beb5351ce626331b6c3001d0c304461daf23164
Certificate Common Name (CN):49.13.35.129
Issuer Distinguished Name (DN):49.13.35.129
TLS Version:TLS 1.2
First seen:2025-09-09 08:39:51 UTC
Last seen:2025-09-10 11:54:56 UTC
Status:Blacklisted
Listing reason:Vidar C&C
Listing date:2025-09-11 06:32:42
Malware samples:12
Botnet C&Cs:1

Malware Samples


The table below documents all malware samples associated with this SSL certificate.

Timestamp (UTC)Malware Sample (MD5 hash)VTSignatureBotnet C&C (IP:port)
2025-09-10 11:54:56a1d3bc7b91de9cc5a7b04ae9049b1cd2n/a49.13.35.129:443
2025-09-10 09:33:127753b82ba7a6dc503bfc9f926832bac8n/a49.13.35.129:443
2025-09-10 08:53:388c46461ef664465e749ee5591009e888n/a49.13.35.129:443
2025-09-10 07:05:44e689162239d05aa5ccb0014677b95d81n/a49.13.35.129:443
2025-09-10 07:00:419328067591ad3d49f1b8a1f373a9bf32n/a49.13.35.129:443
2025-09-10 05:08:4472e4d348201016cde8227a5eb553336dn/a49.13.35.129:443
2025-09-10 04:11:13077300efbf2fa03fce8dacb2ec17170cn/a49.13.35.129:443
2025-09-10 03:45:4668f6dacbcb9fad48a3cfc8bc713df7f6n/a49.13.35.129:443
2025-09-10 03:03:1975cf21a56df7a30500dd0bcfdec7bd58n/a49.13.35.129:443
2025-09-10 00:48:1804146834f071a3864eb8fc0fc6bfece6n/a49.13.35.129:443
2025-09-10 00:40:5752040c99ffb770f840f305044ed39744n/a49.13.35.129:443
2025-09-09 08:39:51086a8a4e2458b33be8f3be04a40c5d2an/a49.13.35.129:443

# of entries: 12 (max: 100)